Skip to content

For cybersecurity teams

Map the infrastructure behind an indicator.

Investigate a domain or IP end to end: DNS and certificate history, RDAP and ASN ownership, open ports and services, exposed subdomains, and public reputation and abuse lists.

How it comes together

DomainDNS · SSL
RDAP · ASNOwnership
Host scanPorts · CVE
Indicator casePivot & export
From an indicator to the infrastructure behind it.

What you can do

Domain & IP indicators

DNS records and mail posture, certificate transparency, RDAP and ASN ownership, reverse DNS and passive DNS.

Host & exposure

Open ports, software fingerprints and known vulnerabilities from public scan data, plus exposed subdomains.

Reputation & abuse

Check an address against public blocklists, abuse feeds and scanner lists to see how it is already seen.

Pivot the infra

Jump from a domain to its certs, from an IP to its ASN, from a host to its CVEs, and keep it in one case.

A typical workflow

Four steps from a single clue to something you can hand off.

  1. Start from the indicator

    Paste a domain, an IP, an ASN or a CVE you picked up from an alert.

  2. Read the picture

    Ownership, infrastructure, exposure and reputation come back together, each from a named public source.

  3. Pivot

    Follow a subdomain, a certificate, an abuse contact or a linked IP to the next step.

  4. Keep the trail

    Map it into a case and export the indicators for your ticket or report.

What Elyv checks for you

  • DNS, certificates & RDAPownership and history
  • Host scan, ASN & CVEexposure and vulnerabilities
  • Reputation & passive DNShow an indicator is already seen
  • Correlation & exportpivot and hand off

Questions

Elyv reads public infrastructure records and existing public scan data. It is for defensive research and does not actively attack or probe targets.

Start from one clue.

Search a username, an email, a phone or a domain and see what public sources hold.